Skip to main content
A Trust Profile is your organization’s repository of security documentation inside VISO TRUST. It serves two purposes: it feeds Artifact Intelligence with your own artifacts to answer inbound customer questionnaires automatically, and it provides the source material for Vendor Discovery — surfacing vendors referenced in your documents. Navigate to Trust → Knowledge base to manage your Trust Profile.

What the Trust Profile Is For

When your organization is a vendor being assessed by a VISO TRUST customer, the assessment process typically involves submitting documentation through a collection request. The Trust Profile eliminates the need to respond manually to every request. Documents uploaded to your Trust Profile are analyzed by Artifact Intelligence and made available to:
  • Automatically answer questionnaires — when a customer uses VISO Chat Agent to ask questions about your security program, the AI draws on your Trust Profile artifacts to generate answers
  • Pre-populate assessments — when a customer assesses your organization, your Trust Profile documents can reduce the number of additional artifacts they need to request
  • Power Vendor Discovery — VISO TRUST analyzes your artifacts to identify subservicers and vendors referenced in your documents, surfacing them in your Vendor Discovery feed
Artifacts uploaded to your Trust Profile are not shared outside your VISO TRUST instance without your control. They are used internally to answer questions and power discovery — they are not published publicly or automatically shared with customers assessing you.

Adding Artifacts to Your Trust Profile

1

Go to Trust → Knowledge base

This is your Trust Profile management page.
2

Click Add Artifacts

Upload files by dragging and dropping, opening a file browser, or submitting a webpage URL.Accepted inputs include:
  • Security documents (SOC 2 reports, ISO 27001 certificates, penetration test reports)
  • Compliance documents (DPAs, privacy policies, sub-processor disclosures)
  • Policies and procedures
  • Security overview pages (via URL)
  • Any other documentation describing your security program
3

Wait for analysis

Artifact Intelligence processes each document automatically. Once analysis is complete, the artifact is available for VISO Chat Agent, questionnaire answering, and vendor discovery.

Keeping Your Trust Profile Current

The value of your Trust Profile depends on how current your documentation is. Outdated artifacts reduce the quality of AI-generated answers and may give customers an inaccurate picture of your security posture. Recommendations:
  • Upload new SOC 2 or ISO 27001 reports as soon as they’re issued
  • Update your sub-processor list whenever it changes
  • Remove or replace expired artifacts so outdated documents don’t generate misleading answers
  • Include your security and privacy pages via URL so VISO TRUST can monitor them for changes

Trust Profile and VISO Chat Agent

When a VISO TRUST customer uses VISO Chat Agent to ask questions about a vendor, the AI searches the vendor’s Trust Profile (if one exists) alongside other available evidence. A complete Trust Profile means more accurate, specific answers — and fewer follow-up requests sent to your security team.

Trust Profile vs. Assessment Artifacts

Assessment artifacts collected from a vendor are scoped to that specific relationship and assessment. Trust Profile artifacts are organization-wide and power AI capabilities across your program.